Splunk Search

Splunk Search
Community Activity
indeed_2000
on splunk when i want to do field extraction ask me source type. and when I open this listbox show files on that path...
by indeed_2000 Motivator in Splunk Search 04-21-2020
0 0
0
0
joepjisc
I cannot find this question being asked this way round, so hopefully its not a duplicate. I have a lookup CSV like t...
by joepjisc Path Finder in Splunk Search 04-21-2020
0 5
0
5
splunkuser2127
I have 3 fields: "Runtime_A", "Runtime_B", and "guid". My current query is: search | chart values(guid) AS "Guid", ...
by splunkuser2127 Loves-to-Learn in Splunk Search 04-20-2020
0 2
0
2
splunkbeginner
the search (thanks for who provided this) is: | tstats count where host=linux01 sourcetype="linux:audit" by _time sp...
by splunkbeginner Engager in Splunk Search 04-20-2020
0 8
0
8
MwayneSmith
someone suggested a join, but as a newbie...... Don't know how to do this. I believe I would need two searches, 1 b...
by MwayneSmith Explorer in Splunk Search 04-20-2020
0 1
0
1
pkeller
Given a list of CIDR ranges ... 10.198.68.132/30, 10.244.18.150/31, 10.48.37.96/24 Is there a search that could extr...
by pkeller Contributor in Splunk Search 04-20-2020
0 2
0
2
splunkuser2127
I have 3 extraction fields: "guid", "runtime_general", "runtime_specific". There is also a value "A" that I will sea...
by splunkuser2127 Loves-to-Learn in Splunk Search 04-20-2020
0 0
0
0
nocostk
I'm trying to use the field extraction tool. The problem is that the field I want to extract is about 18 lines down ...
by nocostk Communicator in Splunk Search 04-20-2020
0 4
0
4
bntdumas
Hello All, I spent a lot of time trying to figure out how to fill out missing data with approximations based on the ...
by bntdumas Engager in Splunk Search 04-20-2020
0 6
0
6
loc_spl
Hi folks, I'm having a hard time with this one. Maybe I need more coffee. Say I have several events like this: Event...
by loc_spl New Member in Splunk Search 04-20-2020
0 1
0
1
warmup031
Hello, I would like to know how to find searchs that do not succeed (no results or with errors) ? Some users complain...
by warmup031 Explorer in Splunk Search 04-20-2020
0 2
0
2
malgru
Hello I am trying to get a regex to work in splunk but without success, perhaps someone here can help me? This work...
by malgru New Member in Splunk Search 04-20-2020
0 3
0
3
wfskmoney
We want to parse highly nested jsons into expanded tables. We found that the following code works, given we apply the...
by wfskmoney Path Finder in Splunk Search 04-20-2020
0 2
0
2
iet_ashish
Hello there, Is there a way to address all fields case insensitively. To illustrate my point I have this query, ind...
by iet_ashish Explorer in Splunk Search 04-20-2020
0 1
0
1
coolkris
I am trying to create a result set out of 2 search queries with a common field.I have tried multiple solutions provid...
by coolkris New Member in Splunk Search 04-20-2020
0 3
0
3
iet_ashish
I have a query which essentially looks like this, | makeresults count=1 | eval host="host1, host2, host3, host4, ho...
by iet_ashish Explorer in Splunk Search 04-20-2020
0 5
0
5
navap123
I have 6 sources with json event in the following structure (each source with different data of tests): "tests": [...
by navap123 Explorer in Splunk Search 04-20-2020
0 3
0
3
mpd202004
Hello community, I am using search to get the values for ‘runtime’ and trying to get overall stats for a runtime va...
by mpd202004 New Member in Splunk Search 04-20-2020
0 3
0
3
a212830
Hi, I'm testing out some features in 6.3, and looking at increasing our search and index throughput. One of the set...
by a212830 Champion in Splunk Search 04-19-2020
1 6
1
6
manakin
There is a dropdown filter on the dashboard. How can I select multiple values ​​for that filter?
by manakin New Member in Splunk Search 04-19-2020
0 2
0
2
kulwindersandhu
I have a logic which I want to implement in Splunk, but I'm getting confused with the syntax.Let me explain what I am...
by kulwindersandhu New Member in Splunk Search 04-19-2020
0 1
0
1
Testeur971
Hi, I wonder test different pattern matching (format spl) dynamically with a field value without use the command "ma...
by Testeur971 New Member in Splunk Search 04-19-2020
0 13
0
13
tkdguq0110
I just want to create csv file automatically everyday for example, today just is created 20200417.csv tomorrow will ...
by tkdguq0110 Path Finder in Splunk Search 04-19-2020
0 4
0
4
motaghis
There are three conditions in my eval: 1) date=2019-Present, '"/2019","/2020"' 2) date=2019, " /2019" 3) date=2020,...
by motaghis Explorer in Splunk Search 04-18-2020
0 6
0
6
asoma0707
Hi, I am novice to splunk and trying to learn explore things in it. Currently I am stuck with one problem while extr...
by asoma0707 New Member in Splunk Search 04-18-2020
0 5
0
5
Get Updates on the Splunk Community!

Data Management Digest – December 2025

Welcome to the December edition of Data Management Digest! As we continue our journey of data innovation, the ...

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...

Unlock Faster Time-to-Value on Edge and Ingest Processor with New SPL2 Pipeline ...

Hello Splunk Community,   We're thrilled to share an exciting update that will help you manage your data more ...